Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bump avro to 1.11.3 to fix cve #45

Open
wants to merge 2 commits into
base: main
Choose a base branch
from

Conversation

skumarp7
Copy link

No description provided.

Signed-off-by: Sanjay Kumar <[email protected]>
@skumarp7
Copy link
Author

skumarp7 commented Aug 8, 2024

Hi @roaksoax @andsel ,

I understand that there are few compatibility issues with ruby 2.6 and avro gem. Is it not possible to merge the fix in logstash 8.x alone?

@andsel
Copy link
Contributor

andsel commented Aug 8, 2024

Hi @skumarp7 please send an email to [email protected] communicating which CVE this PR is trying to fix, in the email please specify to communicate with the Logstash team 🙏

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants